Malware and Android are quite synonymous for a variety of reasons. Given the versatility and openness of the Android platform, malicious apps can easily make their way into the Play Store. However, things are slightly different now with the introduction of Google Bouncer which screens every app for malware. However, some developers are clever enough to bypass this altogether and still have malicious apps on the Play Store.
Earlier today, we discovered a new Android-based malware called “Judy”. The name stems from the app, “Chef Judy”. The app comes from Korean developer Kiniwini under ENISTUDIO Corp. The vulnerability was spotted by research and security firm Check Point. The developer apparently has a total of 41 apps on the Play Store that come with this malware. These apps have reportedly spread malware to nearly 36.5 million Android devices.
So what does this malware do?
Check Point claims that Judy basically creates fraudulent ad clicks on its apps to multiply revenues for the developers. The worst part is that the apps have been around for a couple of years now and were updated recently, telling us that the company has been fooling Google’s security system for a couple of years. The fact that it can completely surpass Google’s Bouncer system is worth pointing out as well.
Well, Google has now removed the malicious apps from the Play Store, so users no longer have to worry about stumbling across these apps accidentally. It’s important to note that these apps are available on iOS as well, but there have been no known reports of malware outbreaks. There are about 45 apps from ENISTUDIO Corp on the iTunes App Store right now.
- Forget WannaCry: hackers promise floods of tears with fresh malware